nerdexam
(ISC)2(ISC)2

CERTIFIED-IN-CYBERSECURITY · Question #278

CERTIFIED-IN-CYBERSECURITY Question #278: Real Exam Question with Answer & Explanation

The correct answer is C: Complying with legal definitions and regulations. Complying with legal definitions and regulations is a best practice to support regulatory and contractual obligations (see ISC2 Study Guide, Chapter 5, Module 3). By understanding and adhering to legal requirements, the organization can ensure that it meets its obligations and av

Security Principles

Question

Which of the following is a best practice to support regulatory and contractual obligations?

Options

  • AEnsuring simplicity for user understanding
  • BDefining appropriate data usage within the organization
  • CComplying with legal definitions and regulations
  • DEncompassing all requirements in a single policy

Explanation

Complying with legal definitions and regulations is a best practice to support regulatory and contractual obligations (see ISC2 Study Guide, Chapter 5, Module 3). By understanding and adhering to legal requirements, the organization can ensure that it meets its obligations and avoids penalties, legal disputes, and reputational damage. Ensuring simplicity for user understanding is important for ensuring that users understand and follow the policies, but it does not necessarily ensure compliance with legal requirements. Encompassing all requirements in a single policy is not recommended, as this can lead to overly complex policies that are difficult to understand and follow. Defining appropriate data usage within the organization is important for ensuring data is used appropriately, but more is needed to ensure compliance with legal requirements.

Topics

#Regulatory compliance#Contractual obligations#Legal requirements#Security governance

Community Discussion

No community discussion yet for this question.

Full CERTIFIED-IN-CYBERSECURITY PracticeBrowse All CERTIFIED-IN-CYBERSECURITY Questions